Archive for the 'Microsoft' Category

Documenting Risk

July 28, 2008

The team I run at Microsoft is called the Connected Information Security Group and we build software that powers the corporate information security program. We had some funny videos made that liven up internal presentations and meetings. I thought I would share them with you. This one is called “Documenting Risk”. Enjoy !
done

var vars = {javascriptid: [...]

Tracking Risk

July 28, 2008

The team I run at Microsoft is called the Connected Information Security Group (CISG) and we build software that powers the corporate information security program. We had some funny videos made that liven up internal presentations and meetings. I thought I would share them with you. This one is called “Tracking Risk”. Enjoy !
done

var vars = [...]

Code Junkie? Check This Out

June 12, 2008

RV is one of my core framework developers. His blog on MSDN is http://blogs.msdn.com/codejunkie/default.aspx. He will be contributing to our team blog when we open it in a few weeks. In the meantime check out his personal blog for workflow, web services, Team Foundation Server and other great .NET coding stuff.
Updated: Curphey …..”reminds me [...]

Social Software, SharePoint and Microsoft 2.0

June 12, 2008

I made a deliberate choice in joining Microsoft, in fact a very deliberate choice. I made a bet that we will emerge into a serious online software and services company that not only embraces but leads the next generation of Internet technology. I also made a bet that in the future people want to leverage [...]

More On Checklists

June 12, 2008

Alex Hutton posted this follow up on my first post about checklists. He is of course spot on. Checklists in my humble opinion can provide a State of Nature, but can’t provide a State of Knowledge or a State of Wisdom (nice phrases). They certainly don’t do computation or analysis but what they do is [...]

The Real 80 / 20 Rule

June 10, 2008

It’s all about the framework (again)!

GRC - Why It’s of LIMITED Interest to Me

June 10, 2008

I wanted to post a “rah rah” message to Rich Mogul when he posted that GRC platforms Are Dead. He was so spot on in my humble opinion that he made me smile for a week or so. I may be a bolshy arrogant git confident but re-assurance from smart people is always comforting. Today [...]

Social Networking, Crowd Sourcing and Security

June 10, 2008

I thought I posted this a while back so my apologies. At the OWASP Conference I spoke about social networking and how it may be applied to security domain in the future.  I used the slide below.
 

 
In a related but unconnected event, that Friday someone of the team sent out a simple spreadsheet [...]

Patterns & Practices Improving Web Services Security: Scenarios and Implementation Guidance for WCF

June 8, 2008

My cool security friend JD has done it again (in BETA).
http://www.codeplex.com/WCFSecurityGuide
These things are the definitive guides to the topic. Masterpieces!
Download the Improving Web Services Security Guide(BETA)

Life at Microsoft - The Truth Revealed

May 26, 2008

Life At Microsoft - The Truth Revealed